Postbird is a PostgreSQL management tool with a narrowly scoped product portfolio centered on the Postbird application itself, offering a graphical interface for database administration and query execution. The observed vulnerability profile reflects typical application-layer input-handling concerns, with the durable signal centered on cross-site scripting weaknesses in web page generation. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Postbird Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-33570MEDIUM Postbird 0.8.4 allows stored XSS via the onerror attribute of an IMG element in any PostgreSQL database table. This can result in reading local files via vectors involving XMLHttpR | May 25, 2021 | 5.4 | 30 | NO | YES |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Postbird Project.
Media articles that mention a CVE ID that affects a product developed by Postbird Project — matched by CVE ID, not by vendor name.